A bug in an API endpoint was apparently abused to access customer data.
AI use is really starting to show and for once, we’re happy for it.
Researchers found a trojanized X-VPN installer used to deploy STX RAT malware. X-VPN itself was not breached, and only attacker-hosted downloads are affected.
…
A logic inversion bug was recently found in Linux, caused by a single stray character.
Lazarus is getting company as UNK_DeadDrop starts luring devs with fake jobs, too.
Some repos are already restored.
A new bug was found, allowing crooks to execute arbitrary code and possibly steal sensitive files.
A month-old VPN bug was finally fixed, but not until after Qilin had a field day with it.
A popular WordPress plugin is once again being leveraged in website takeover attacks.
Google is warning about hackers walking into offices, pretending to be IT support.